Description
protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
Remediation
References
https://hackerone.com/reports/319576
Related Vulnerabilities
CVE-2017-16122 Vulnerability in npm package cuciuci
CVE-2022-36891 Vulnerability in maven package org.jenkins-ci.plugins:deployer-framework
CVE-2021-37136 Vulnerability in maven package io.netty:netty-codec
CVE-2022-25898 Vulnerability in maven package org.webjars.npm:jsrsasign
CVE-2022-37223 Vulnerability in maven package com.jflyfox:jflyfox_jfinal